Several vulnerabilities have been discovered in the X Window System,which may lead to privilege escalation or denial of service.The Common Vulnerabilities and Exposures project identifies thefollowing problems:

CVE-2006-6101

Sean Larsson discovered an integer overflow in the Render extension, which might lead to denial of service or local privilege escalation.

CVE-2006-6102

Sean Larsson discovered an integer overflow in the DBE extension, which might lead to denial of service or local privilege escalation.

CVE-2006-6103

Sean Larsson discovered an integer overflow in the DBE extension, which might lead to denial of service or local privilege escalation.

For the stable distribution (sarge) these problems have been fixed inversion 4.3.0.dfsg.1-14sarge3. This update lacks builds for theMotorola 680x0 architecture, which had build problems. Packages will bereleased once this problem has been resolved.

For the upcoming stable distribution (etch) these problems have been fixedin version 1.1.1-15 of xorg-server.

For the unstable distribution (sid) these problems have been fixedin version 1.1.1-15 of xorg-server.

We recommend that you upgrade your XFree86 packages.

Upgrade Instructions- --------------------

wget url will fetch the file for youdpkg -i file.deb will install the referenced file.

If you are using the apt-get package manager, use the line forsources.list as given below: